Fortinet white logo
Fortinet white logo

Administration Guide

Creating ZTNA tag groups

Creating ZTNA tag groups

Note

You must enable the visibility of this feature in Policy & Objects before it can be configured. To toggle feature visibility, go to Policy & Objects > Tools > Feature Visibility, and add or remove a checkmark for the corresponding feature.

To create a ZTNA Tag Group:
  1. Go to Policy & Objects > Firewall Objects > ZTNA Tag, and click Create New.
    The Create New ZTNA Tag Group window opens.
  2. Enter a name for the group.
  3. Select a ZTNA Tag type from one of the following:
    • EMS
    • Geographic IP
  4. Select Members to add to the ZTNA tag group.
    • When configuring an EMS tag group, members are configured in Policy & Objects > Firewall Objects > ZTNA Tag with a IP or MAC object type. See Viewing ZTNA tags.
    • When configuring a Geographic IP tag group, members are configured in Policy & Objects > Firewall Objects > Addresses as a Firewall Address with the Type set as Geography. See Creating ZTNA geographic IP objects.
  5. Click OK to save the group.
    The ZTNA tag group can now be selected in a Firewall Policy with ZTNA > IP/MAC filtering enabled.

Creating ZTNA tag groups

Creating ZTNA tag groups

Note

You must enable the visibility of this feature in Policy & Objects before it can be configured. To toggle feature visibility, go to Policy & Objects > Tools > Feature Visibility, and add or remove a checkmark for the corresponding feature.

To create a ZTNA Tag Group:
  1. Go to Policy & Objects > Firewall Objects > ZTNA Tag, and click Create New.
    The Create New ZTNA Tag Group window opens.
  2. Enter a name for the group.
  3. Select a ZTNA Tag type from one of the following:
    • EMS
    • Geographic IP
  4. Select Members to add to the ZTNA tag group.
    • When configuring an EMS tag group, members are configured in Policy & Objects > Firewall Objects > ZTNA Tag with a IP or MAC object type. See Viewing ZTNA tags.
    • When configuring a Geographic IP tag group, members are configured in Policy & Objects > Firewall Objects > Addresses as a Firewall Address with the Type set as Geography. See Creating ZTNA geographic IP objects.
  5. Click OK to save the group.
    The ZTNA tag group can now be selected in a Firewall Policy with ZTNA > IP/MAC filtering enabled.